All of lore.kernel.org
 help / color / mirror / Atom feed
From: Gerd Hoffmann <kraxel@redhat.com>
To: Attila-Mihaly Balazs <dify.ltd@gmail.com>
Cc: "Daniel P. Berrange" <berrange@redhat.com>, qemu-devel@nongnu.org
Subject: Re: [Qemu-devel] [PATCH] Make password based authentication the default for VNC
Date: Tue, 07 Jun 2016 22:35:35 +0200	[thread overview]
Message-ID: <1465331735.14901.153.camel@redhat.com> (raw)
In-Reply-To: <CAOqyLXg+FSJ+aqvctV5X5+eKrUMMFsa+B3k7GWpWXBMwD42o=A@mail.gmail.com>

  Hi,

> Agreed. The target of this patch is however not people who know that
> they want security, but rather people who don't know it :-). Ie.
> people who just run things with their default settings and stop as
> soon as it seems to work, without conideration for security.

I have my doubts this is going to work.  The wikis of this world will
start to include the ",insecure", pretty much like they include
",disable-ticketing" for -spice today.  And people will cut+paste that.

Flipping defaults often breaks things, and this really doesn't look like
a good reason to take that risk.

cheers,
  Gerd

      reply	other threads:[~2016-06-07 20:35 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2016-06-07  9:13 [Qemu-devel] [PATCH] Make password based authentication the default for VNC Attila-Mihaly Balazs
2016-06-07  9:24 ` Daniel P. Berrange
2016-06-07 17:46   ` Attila-Mihaly Balazs
2016-06-07 20:35     ` Gerd Hoffmann [this message]

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=1465331735.14901.153.camel@redhat.com \
    --to=kraxel@redhat.com \
    --cc=berrange@redhat.com \
    --cc=dify.ltd@gmail.com \
    --cc=qemu-devel@nongnu.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.